Kontrola logu,chromium
Napsal: 14 bře 2020 20:34
Zdravím, prosím o kontrolu logu, mám v PC chromium a nevím jak ho odstranit.
Logfile of HiJackThis Fork by Alex Dragokas v.2.9.0.7
Platform: x64 Windows 7 (Home Premium), 6.1.7601.24544, Service Pack: 1
Time: 14.03.2020 - 20:27 (UTC+01:00)
Language: OS: Czech (0x405). Display: Czech (0x405). Non-Unicode: Czech (0x405)
Elevated: Yes
Ran by: Denis (group: Administrator) on BANÁNEK-PC, FirstRun: yes
Chrome: 80.0.3987.132
Internet Explorer: 11.0.9600.19597
Default: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Chrome)
Boot mode: Normal
Running processes:
Number | Path
1 C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
1 C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
1 C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
1 C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
1 C:\Program Files\AVAST Software\Avast\AvastSvc.exe
2 C:\Program Files\AVAST Software\Avast\AvastUI.exe
1 C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
1 C:\Program Files\AVAST Software\Avast\aswidsagent.exe
1 C:\Program Files\Acer\Acer Updater\UpdaterService.exe
1 C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
1 C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
1 C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
1 C:\Program Files\CCleaner\CCleaner64.exe
1 C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe
1 C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
1 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
1 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
1 C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
1 C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
1 C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
1 C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
1 C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
1 C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
1 C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
1 C:\Program Files\Windows Media Player\wmpnetwk.exe
1 C:\Program Files\qBittorrent\qbittorrent.exe
1 C:\Users\Denis\Desktop\HiJackThis\HiJackThis.exe
1 C:\Windows\System32\SearchFilterHost.exe
1 C:\Windows\System32\SearchIndexer.exe
1 C:\Windows\System32\SearchProtocolHost.exe
1 C:\Windows\System32\audiodg.exe
2 C:\Windows\System32\csrss.exe
1 C:\Windows\System32\dllhost.exe
1 C:\Windows\System32\dwm.exe
1 C:\Windows\System32\lsass.exe
1 C:\Windows\System32\lsm.exe
1 C:\Windows\System32\msiexec.exe
2 C:\Windows\System32\nvvsvc.exe
1 C:\Windows\System32\services.exe
1 C:\Windows\System32\smss.exe
1 C:\Windows\System32\spoolsv.exe
13 C:\Windows\System32\svchost.exe
1 C:\Windows\System32\taskeng.exe
1 C:\Windows\System32\taskhost.exe
1 C:\Windows\System32\wbem\WmiApSrv.exe
2 C:\Windows\System32\wbem\WmiPrvSE.exe
2 C:\Windows\System32\wbem\unsecapp.exe
1 C:\Windows\System32\wininit.exe
1 C:\Windows\System32\winlogon.exe
1 C:\Windows\explorer.exe
1 C:\Windows\servicing\TrustedInstaller.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main: [Default_Page_URL] = http://homepage.acer.com/rdr.aspx?b=ACA ... 5i47j2v70o
R0 - HKCU\Software\Microsoft\Internet Explorer\Main: [Start Page] = http://start.myplaycity.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main: [Start Page] = https://search.gmx.com/start?src=p_jkld ... &p_w=y1w19
R0-32 - HKLM\Software\Microsoft\Internet Explorer\Main: [Start Page] = https://search.gmx.com/start?src=p_jkld ... &p_w=y1w19
R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: [SuggestionsURLFallback] = http://clients5.google.com/complete/search?hl={language}&q={searchTerms}&client=ie8&inputencoding={inputEncoding}&outputencoding={outputEncoding} - (no name)
R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: [SuggestionsURL,SuggestionsURLFallback] = http://clients5.google.com/complete/search?hl={language}&q={searchTerms}&client=ie8&inputencoding={inputEncoding}&outputencoding={outputEncoding} - (no name)
R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9AD09901-06DD-4DDD-A62D-6D2243B771AB}: [URL,SuggestionsURLFallback] = http://start.myplaycity.com/results.php?category=web&s={searchTerms} - MyPlayCity
R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9F37B1A0-614F-4566-B443-FA56A7054CCB}: [URL] = http://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454 - Seznam TV Program
R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{c2b8e594-d284-ef0b-2c66-48a9c98914bc}: [URL,SuggestionsURLFallback] = http://start.myplaycity.com/results.php?category=web&s={searchTerms} - MyPlayCity
R4 - SearchScopes: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: [URL] = https://search.gmx.com/web/result?origi ... w=y1w19&q={searchTerms} - GMX - Enhanced by Google
R4 - SearchScopes: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{c2b8e594-d284-ef0b-2c66-48a9c98914bc}: [SuggestionsURL] = http://clients5.google.com/complete/search?hl={language}&q={searchTerms}&client=ie8&inputencoding={inputEncoding}&outputencoding={outputEncoding} - Google
R4 - SearchScopes: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{c2b8e594-d284-ef0b-2c66-48a9c98914bc}: [URL] = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 - Google
O1 - Hosts: 65.112.87.186 master.gamespy.com
O2 - HKLM\..\BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2-32 - HKLM\..\BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2-32 - HKLM\..\BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - Global User Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\$McRebootA5E6DEAA56$.lnk -> (lnk is corrupted)
O4 - Global User Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk -> C:\Program Files (x86)\WIDCOMM\Bluetooth Software\BTTray.exe
O4 - HKCU\..\Run: [CCleaner Smart Cleaning] = C:\Program Files\CCleaner\CCleaner64.exe /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall 19.126.0627.0002\amd64] = C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Denis\AppData\Local\Microsoft\OneDrive\19.126.0627.0002\amd64"
O4 - HKCU\..\RunOnce: [Uninstall 19.126.0627.0002] = C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Denis\AppData\Local\Microsoft\OneDrive\19.126.0627.0002"
O4 - HKCU\Control Panel\Desktop: [SCRNSAVE.EXE] = C:\Windows\System32\Acer.scr (file missing)
O4 - HKLM\..\Run: [Acer ePower Management] = C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
O4 - HKLM\..\Run: [AvastUI.exe] = C:\Program Files\AVAST Software\Avast\AvLaunch.exe /gui
O4 - HKLM\..\Run: [IAAnotif] = C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [SynTPEnh] = C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [cAudioFilterAgent] = C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe
O4 - HKU\.DEFAULT\..\RunOnce: [SPReview] = C:\Windows\System32\SPReview\SPReview.exe /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601
O4 - HKU\S-1-5-21-1248088687-4277799999-3269530246-1006\..\RunOnce: [ScrSav] = C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe /default (file missing) (User 'UpdatusUser')
O4 - HKU\S-1-5-21-1248088687-4277799999-3269530246-1006\Control Panel\Desktop: [SCRNSAVE.EXE] = C:\Windows\system32\Acer.scr (file missing)
O4 - MSConfig\startupfolder: C:^Users^Denis^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Facebook Gameroom.lnk [backup] => C:\Users\Denis\AppData\Local\Facebook\Games\FacebookGameroom.exe fbgames://windows_startup/ (2018/03/16) (file missing)
O4 - MSConfig\startupfolder: C:^Users^Denis^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Poslat do aplikace OneNote.lnk [backup] => C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE /tsr (2018/03/16) (file missing)
O4 - MSConfig\startupreg: BitTorrent [command] = C:\Users\Denis\AppData\Roaming\BitTorrent\BitTorrent.exe /MINIMIZED (HKCU) (2019/05/04) (file missing)
O4 - MSConfig\startupreg: CCleaner Monitoring [command] = C:\Program Files\CCleaner\CCleaner64.exe /MONITOR (HKCU) (2018/03/16)
O4 - MSConfig\startupreg: CCleaner Smart Cleaning [command] = C:\Program Files\CCleaner\CCleaner64.exe /MONITOR (HKCU) (2019/05/04)
O4 - MSConfig\startupreg: DAEMON Tools Lite Automount [command] = C:\Program Files\DAEMON Tools Lite\DTAgent.exe -autorun (HKCU) (2018/03/16)
O4 - MSConfig\startupreg: DriverAgent Plus [command] = C:\ProgramData\DriverAgentPlus\DriverAgentPlus.exe -auto (HKCU) (2018/03/16) (file missing)
O4 - MSConfig\startupreg: DriverAgentPlusHelper [command] = C:\ProgramData\DriverAgentPlus\DriverAgentPlusHelper\DriverAgentPlusHelper.exe (HKCU) (2018/03/16) (file missing)
O4 - MSConfig\startupreg: Global Registration [command] = C:\Program Files (x86)\Acer\Registration\GREG.exe BOOT (HKCU) (2018/03/16) (file missing)
O4 - MSConfig\startupreg: GoogleChromeAutoLaunch_7A45F065F50F07C117F6EFCFDE1E6ED4 [command] = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window /prefetch:5 (HKCU) (2019/05/04)
O4 - MSConfig\startupreg: cz.seznam.software.autoupdate [command] = C:\Users\Denis\AppData\Roaming\Seznam.cz\szninstall.exe -c (HKCU) (2018/03/16) (file missing)
O4 - MSConfig\startupreg: cz.seznam.software.szndesktop [command] = C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe -q (HKCU) (2018/03/16) (file missing)
O4 - MSConfig\startupreg: msnmsgr [command] = C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe /background (HKCU) (2018/03/16)
O4 - MSConfig\startupreg: seznam-listicka-distribuce [command] = C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate (HKLM) (2018/03/16) (file missing)
O4-32 - HKLM\..\Run: [Adobe Reader Speed Launcher] = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe
O8 - Context menu item: HKCU\..\Internet Explorer\MenuExt\E&xport to Microsoft Excel: (default) = C:\Program Files (x86)\Microsoft Office\Root\Office16\EXCEL.EXE (file missing)
O8 - Context menu item: HKCU\..\Internet Explorer\MenuExt\Odeslat obrázek do zařízení &Bluetooth...: (default) = C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Context menu item: HKCU\..\Internet Explorer\MenuExt\Odeslat stránku do zařízení &Bluetooth...: (default) = C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Context menu item: HKCU\..\Internet Explorer\MenuExt\Se&nd to OneNote: (default) = C:\Program Files (x86)\Microsoft Office\Root\Office16\ONBttnIE.dll (file missing)
O9 - Button: HKLM\..\{CCA281CA-C863-46ef-9331-5C8D4460577F}: Odeslat do zařízení Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Tools menu item: HKLM\..\{CCA281CA-C863-46ef-9331-5C8D4460577F}: Odeslat do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9-32 - Button: HKLM\..\{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}: Přidat na blog - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9-32 - Button: HKLM\..\{CCA281CA-C863-46ef-9331-5C8D4460577F}: Odeslat do zařízení Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9-32 - Tools menu item: HKLM\..\{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}: &Přidat na blog Windows Live Writer - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9-32 - Tools menu item: HKLM\..\{CCA281CA-C863-46ef-9331-5C8D4460577F}: Odeslat do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O17 - DHCP DNS 1: 10.0.0.138
O21 - HKLM\..\ShellIconOverlayIdentifiers\00asw: avast - {472083B0-C522-11CF-8763-00608CC02F24} - C:\Program Files\AVAST Software\Avast\ashShell.dll
O22 - Task: (activation) \Microsoft\Windows\Windows Activation Technologies\ValidationTask - C:\Windows\system32\Wat\WatAdminSvc.exe /run (Microsoft)
O22 - Task: (activation) \Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline - C:\Windows\system32\schtasks.exe /run /I /TN "\Microsoft\Windows\Windows Activation Technologies\ValidationTask"
O22 - Task: (disabled) BlueStacksHelper - C:\ProgramData\BlueStacks\Client\Helper\BlueStacksHelper.exe (file missing)
O22 - Task: (disabled) CCleaner Update - C:\Program Files\CCleaner\CCUpdate.exe
O22 - Task: (disabled) Opera scheduled Autoupdate 1497707299 - C:\Users\Denis\AppData\Local\Programs\Opera\launcher.exe --scheduledautoupdate $(Arg0) (file missing)
O22 - Task: (disabled) {68682936-DA73-4082-87F2-472A0868E23C} - C:\Windows\system32\pcalua.exe -a D:\aocsetup.exe -d D:\ -c /autorun
O22 - Task: (disabled) {73B34057-B010-430E-9185-E8880F8930CE} - C:\Windows\system32\pcalua.exe -a "C:\Users\Denis\Downloads\Age Of Empires II+Age of Empires 2 - The Conquerors Expansion+stuff with online play\Age Of Empires II+Age of Empires 2 - The Conquerors Expansion+stuff with online play\Aoe2 patchs and cracks\Age2upA.exe" -d "C:\Users\Denis\Downloads\Age Of Empires II+Age of Empires 2 - The Conquerors Expansion+stuff with online play\Age Of Empires II+Age of Empires 2 - The Conquerors Expansion+stuff with online play\Aoe2 patchs and cracks"
O22 - Task: (disabled) {8C878933-9E98-41FD-B08F-A7EB97C8BCE9} - C:\Windows\system32\pcalua.exe -a "C:\Users\Denis\Downloads\Age of Empires 2 - The Conquerors Expansion - NoCD SuperCrack Patch [v1.0c][ENG]\Age of Empires 2 - The Conquerors Expansion - NoCD SuperCrack Patch [v1.0c][ENG]\Patch 1.0c NoCD\no_cd_1.0c_SuperCrack.exe" -d "C:\Users\Denis\Downloads\Age of Empires 2 - The Conquerors Expansion - NoCD SuperCrack Patch [v1.0c][ENG]\Age of Empires 2 - The Conquerors Expansion - NoCD SuperCrack Patch [v1.0c][ENG]\Patch 1.0c NoCD"
O22 - Task: (telemetry) \Microsoft\Office\OfficeTelemetryAgentFallBack2016 - C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe scan upload mininterval:2880 (Microsoft)
O22 - Task: (telemetry) \Microsoft\Office\OfficeTelemetryAgentLogOn2016 - C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe scan upload (Microsoft)
O22 - Task: (telemetry) \Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - C:\Windows\system32\CompatTelRunner.exe (Microsoft)
O22 - Task: (telemetry) \Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - C:\Windows\system32\compattel\DiagTrackRunner.exe /UploadEtlFilesOnly (Microsoft)
O22 - Task: (telemetry) \Microsoft\Windows\Application Experience\ProgramDataUpdater - C:\Windows\system32\compattelrunner.exe -maintenance (Microsoft)
O22 - Task: Avast Emergency Update - C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
O22 - Task: CCleanerSkipUAC - C:\Program Files\CCleaner\CCleaner.exe $(Arg0)
O22 - Task: GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
O22 - Task: GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
O22 - Task: \Avast Software\Overseer - C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe /from_scheduler:1
O22 - Task: \Games\UpdateCheck_S-1-5-21-1248088687-4277799999-3269530246-1001 - {CA22F5B1-E06F-4A2B-94FC-21E87FE53781} - C:\Windows\System32\gameux.dll
O22 - Task: \Microsoft\Office\Office Automatic Updates 2.0 - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe /frequentupdate SCHEDULEDTASK displaylevel=False (Microsoft)
O22 - Task: \Microsoft\Office\Office ClickToRun Service Monitor - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe /WatchService (Microsoft)
O22 - Task: \Microsoft\Office\Office Feature Updates - C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe (Microsoft)
O22 - Task: \Microsoft\Office\Office Feature Updates Logon - C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe /onlogon (Microsoft)
O22 - Task: \Microsoft\Office\OfficeBackgroundTaskHandlerLogon - C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe (Microsoft)
O22 - Task: \Microsoft\Office\OfficeBackgroundTaskHandlerRegistration - C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe (Microsoft)
O22 - Task: \Microsoft\Windows Live\SOXE\Extractor Definitions Update Task - {3519154C-227E-47F3-9CC9-12C3F05817F1} - (no file)
O22 - Task: \Microsoft\Windows\End Of Support\Notify1 - C:\Windows\system32\sipnotify.exe -LogonOrUnlock (Microsoft)
O22 - Task: \Microsoft\Windows\End Of Support\Notify2 - C:\Windows\system32\sipnotify.exe -Daily (Microsoft)
O22 - Task: \Microsoft\Windows\Setup\EOSNotify2 - C:\Windows\system32\EOSNotify.exe -Daily (Microsoft)
O22 - Task: {FDA7AFC0-5A7E-46F4-8774-36E2F1A02C5D} - C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" -c /uninstall PROHYBRIDR /dll OSETUP.DLL
O23 - Service R2: Acer ePower Service - (ePowerSvc) - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service R2: Avast Antivirus - (avast! Antivirus) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service R2: Bluetooth Service - (btwdins) - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service R2: Diagnostics Tracking Service - (DiagTrack) - C:\Windows\System32\svchost.exe -k utcsvc; "ServiceDll" = C:\Windows\system32\diagtrack.dll
O23 - Service R2: Intel(R) Matrix Storage Event Monitor - (IAANTMON) - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service R2: Microsoft Office Click-to-Run Service - (ClickToRunSvc) - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe /service
O23 - Service R2: NVIDIA Display Driver Service - (nvsvc) - C:\Windows\system32\nvvsvc.exe
O23 - Service R2: NVIDIA Update Service Daemon - (nvUpdatusService) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service R2: TeamViewer 12 - (TeamViewer) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service R2: Updater Service - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service R2: Windows Live ID Sign-in Assistant - (wlidsvc) - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
O23 - Service R3: aswbIDSAgent - C:\Program Files\AVAST Software\Avast\aswidsagent.exe
O23 - Service S2: Služba Google Update (gupdate) - (gupdate) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc
O23 - Service S3: Disc Soft Lite Bus Service - C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
O23 - Service S3: Google Chrome Elevation Service - (GoogleChromeElevationService) - C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.132\elevation_service.exe
O23 - Service S3: Microsoft Office Diagnostics Service - (odserv) - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
O23 - Service S3: Služba Google Update (gupdatem) - (gupdatem) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc
--
End of file - Time spent: 21,7 sec. - 40412 bytes, CRC32: FFFFFFFF. Sign: ጀൡ
Logfile of HiJackThis Fork by Alex Dragokas v.2.9.0.7
Platform: x64 Windows 7 (Home Premium), 6.1.7601.24544, Service Pack: 1
Time: 14.03.2020 - 20:27 (UTC+01:00)
Language: OS: Czech (0x405). Display: Czech (0x405). Non-Unicode: Czech (0x405)
Elevated: Yes
Ran by: Denis (group: Administrator) on BANÁNEK-PC, FirstRun: yes
Chrome: 80.0.3987.132
Internet Explorer: 11.0.9600.19597
Default: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Chrome)
Boot mode: Normal
Running processes:
Number | Path
1 C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
1 C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
1 C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
1 C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
1 C:\Program Files\AVAST Software\Avast\AvastSvc.exe
2 C:\Program Files\AVAST Software\Avast\AvastUI.exe
1 C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
1 C:\Program Files\AVAST Software\Avast\aswidsagent.exe
1 C:\Program Files\Acer\Acer Updater\UpdaterService.exe
1 C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
1 C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
1 C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
1 C:\Program Files\CCleaner\CCleaner64.exe
1 C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe
1 C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
1 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
1 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
1 C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
1 C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
1 C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
1 C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
1 C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
1 C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
1 C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
1 C:\Program Files\Windows Media Player\wmpnetwk.exe
1 C:\Program Files\qBittorrent\qbittorrent.exe
1 C:\Users\Denis\Desktop\HiJackThis\HiJackThis.exe
1 C:\Windows\System32\SearchFilterHost.exe
1 C:\Windows\System32\SearchIndexer.exe
1 C:\Windows\System32\SearchProtocolHost.exe
1 C:\Windows\System32\audiodg.exe
2 C:\Windows\System32\csrss.exe
1 C:\Windows\System32\dllhost.exe
1 C:\Windows\System32\dwm.exe
1 C:\Windows\System32\lsass.exe
1 C:\Windows\System32\lsm.exe
1 C:\Windows\System32\msiexec.exe
2 C:\Windows\System32\nvvsvc.exe
1 C:\Windows\System32\services.exe
1 C:\Windows\System32\smss.exe
1 C:\Windows\System32\spoolsv.exe
13 C:\Windows\System32\svchost.exe
1 C:\Windows\System32\taskeng.exe
1 C:\Windows\System32\taskhost.exe
1 C:\Windows\System32\wbem\WmiApSrv.exe
2 C:\Windows\System32\wbem\WmiPrvSE.exe
2 C:\Windows\System32\wbem\unsecapp.exe
1 C:\Windows\System32\wininit.exe
1 C:\Windows\System32\winlogon.exe
1 C:\Windows\explorer.exe
1 C:\Windows\servicing\TrustedInstaller.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main: [Default_Page_URL] = http://homepage.acer.com/rdr.aspx?b=ACA ... 5i47j2v70o
R0 - HKCU\Software\Microsoft\Internet Explorer\Main: [Start Page] = http://start.myplaycity.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main: [Start Page] = https://search.gmx.com/start?src=p_jkld ... &p_w=y1w19
R0-32 - HKLM\Software\Microsoft\Internet Explorer\Main: [Start Page] = https://search.gmx.com/start?src=p_jkld ... &p_w=y1w19
R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: [SuggestionsURLFallback] = http://clients5.google.com/complete/search?hl={language}&q={searchTerms}&client=ie8&inputencoding={inputEncoding}&outputencoding={outputEncoding} - (no name)
R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: [SuggestionsURL,SuggestionsURLFallback] = http://clients5.google.com/complete/search?hl={language}&q={searchTerms}&client=ie8&inputencoding={inputEncoding}&outputencoding={outputEncoding} - (no name)
R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9AD09901-06DD-4DDD-A62D-6D2243B771AB}: [URL,SuggestionsURLFallback] = http://start.myplaycity.com/results.php?category=web&s={searchTerms} - MyPlayCity
R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9F37B1A0-614F-4566-B443-FA56A7054CCB}: [URL] = http://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454 - Seznam TV Program
R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{c2b8e594-d284-ef0b-2c66-48a9c98914bc}: [URL,SuggestionsURLFallback] = http://start.myplaycity.com/results.php?category=web&s={searchTerms} - MyPlayCity
R4 - SearchScopes: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: [URL] = https://search.gmx.com/web/result?origi ... w=y1w19&q={searchTerms} - GMX - Enhanced by Google
R4 - SearchScopes: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{c2b8e594-d284-ef0b-2c66-48a9c98914bc}: [SuggestionsURL] = http://clients5.google.com/complete/search?hl={language}&q={searchTerms}&client=ie8&inputencoding={inputEncoding}&outputencoding={outputEncoding} - Google
R4 - SearchScopes: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{c2b8e594-d284-ef0b-2c66-48a9c98914bc}: [URL] = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 - Google
O1 - Hosts: 65.112.87.186 master.gamespy.com
O2 - HKLM\..\BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2-32 - HKLM\..\BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2-32 - HKLM\..\BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - Global User Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\$McRebootA5E6DEAA56$.lnk -> (lnk is corrupted)
O4 - Global User Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk -> C:\Program Files (x86)\WIDCOMM\Bluetooth Software\BTTray.exe
O4 - HKCU\..\Run: [CCleaner Smart Cleaning] = C:\Program Files\CCleaner\CCleaner64.exe /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall 19.126.0627.0002\amd64] = C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Denis\AppData\Local\Microsoft\OneDrive\19.126.0627.0002\amd64"
O4 - HKCU\..\RunOnce: [Uninstall 19.126.0627.0002] = C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Denis\AppData\Local\Microsoft\OneDrive\19.126.0627.0002"
O4 - HKCU\Control Panel\Desktop: [SCRNSAVE.EXE] = C:\Windows\System32\Acer.scr (file missing)
O4 - HKLM\..\Run: [Acer ePower Management] = C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
O4 - HKLM\..\Run: [AvastUI.exe] = C:\Program Files\AVAST Software\Avast\AvLaunch.exe /gui
O4 - HKLM\..\Run: [IAAnotif] = C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [SynTPEnh] = C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [cAudioFilterAgent] = C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe
O4 - HKU\.DEFAULT\..\RunOnce: [SPReview] = C:\Windows\System32\SPReview\SPReview.exe /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601
O4 - HKU\S-1-5-21-1248088687-4277799999-3269530246-1006\..\RunOnce: [ScrSav] = C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe /default (file missing) (User 'UpdatusUser')
O4 - HKU\S-1-5-21-1248088687-4277799999-3269530246-1006\Control Panel\Desktop: [SCRNSAVE.EXE] = C:\Windows\system32\Acer.scr (file missing)
O4 - MSConfig\startupfolder: C:^Users^Denis^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Facebook Gameroom.lnk [backup] => C:\Users\Denis\AppData\Local\Facebook\Games\FacebookGameroom.exe fbgames://windows_startup/ (2018/03/16) (file missing)
O4 - MSConfig\startupfolder: C:^Users^Denis^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Poslat do aplikace OneNote.lnk [backup] => C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE /tsr (2018/03/16) (file missing)
O4 - MSConfig\startupreg: BitTorrent [command] = C:\Users\Denis\AppData\Roaming\BitTorrent\BitTorrent.exe /MINIMIZED (HKCU) (2019/05/04) (file missing)
O4 - MSConfig\startupreg: CCleaner Monitoring [command] = C:\Program Files\CCleaner\CCleaner64.exe /MONITOR (HKCU) (2018/03/16)
O4 - MSConfig\startupreg: CCleaner Smart Cleaning [command] = C:\Program Files\CCleaner\CCleaner64.exe /MONITOR (HKCU) (2019/05/04)
O4 - MSConfig\startupreg: DAEMON Tools Lite Automount [command] = C:\Program Files\DAEMON Tools Lite\DTAgent.exe -autorun (HKCU) (2018/03/16)
O4 - MSConfig\startupreg: DriverAgent Plus [command] = C:\ProgramData\DriverAgentPlus\DriverAgentPlus.exe -auto (HKCU) (2018/03/16) (file missing)
O4 - MSConfig\startupreg: DriverAgentPlusHelper [command] = C:\ProgramData\DriverAgentPlus\DriverAgentPlusHelper\DriverAgentPlusHelper.exe (HKCU) (2018/03/16) (file missing)
O4 - MSConfig\startupreg: Global Registration [command] = C:\Program Files (x86)\Acer\Registration\GREG.exe BOOT (HKCU) (2018/03/16) (file missing)
O4 - MSConfig\startupreg: GoogleChromeAutoLaunch_7A45F065F50F07C117F6EFCFDE1E6ED4 [command] = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window /prefetch:5 (HKCU) (2019/05/04)
O4 - MSConfig\startupreg: cz.seznam.software.autoupdate [command] = C:\Users\Denis\AppData\Roaming\Seznam.cz\szninstall.exe -c (HKCU) (2018/03/16) (file missing)
O4 - MSConfig\startupreg: cz.seznam.software.szndesktop [command] = C:\Users\Denis\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe -q (HKCU) (2018/03/16) (file missing)
O4 - MSConfig\startupreg: msnmsgr [command] = C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe /background (HKCU) (2018/03/16)
O4 - MSConfig\startupreg: seznam-listicka-distribuce [command] = C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate (HKLM) (2018/03/16) (file missing)
O4-32 - HKLM\..\Run: [Adobe Reader Speed Launcher] = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe
O8 - Context menu item: HKCU\..\Internet Explorer\MenuExt\E&xport to Microsoft Excel: (default) = C:\Program Files (x86)\Microsoft Office\Root\Office16\EXCEL.EXE (file missing)
O8 - Context menu item: HKCU\..\Internet Explorer\MenuExt\Odeslat obrázek do zařízení &Bluetooth...: (default) = C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Context menu item: HKCU\..\Internet Explorer\MenuExt\Odeslat stránku do zařízení &Bluetooth...: (default) = C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Context menu item: HKCU\..\Internet Explorer\MenuExt\Se&nd to OneNote: (default) = C:\Program Files (x86)\Microsoft Office\Root\Office16\ONBttnIE.dll (file missing)
O9 - Button: HKLM\..\{CCA281CA-C863-46ef-9331-5C8D4460577F}: Odeslat do zařízení Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Tools menu item: HKLM\..\{CCA281CA-C863-46ef-9331-5C8D4460577F}: Odeslat do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9-32 - Button: HKLM\..\{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}: Přidat na blog - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9-32 - Button: HKLM\..\{CCA281CA-C863-46ef-9331-5C8D4460577F}: Odeslat do zařízení Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9-32 - Tools menu item: HKLM\..\{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}: &Přidat na blog Windows Live Writer - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9-32 - Tools menu item: HKLM\..\{CCA281CA-C863-46ef-9331-5C8D4460577F}: Odeslat do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O17 - DHCP DNS 1: 10.0.0.138
O21 - HKLM\..\ShellIconOverlayIdentifiers\00asw: avast - {472083B0-C522-11CF-8763-00608CC02F24} - C:\Program Files\AVAST Software\Avast\ashShell.dll
O22 - Task: (activation) \Microsoft\Windows\Windows Activation Technologies\ValidationTask - C:\Windows\system32\Wat\WatAdminSvc.exe /run (Microsoft)
O22 - Task: (activation) \Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline - C:\Windows\system32\schtasks.exe /run /I /TN "\Microsoft\Windows\Windows Activation Technologies\ValidationTask"
O22 - Task: (disabled) BlueStacksHelper - C:\ProgramData\BlueStacks\Client\Helper\BlueStacksHelper.exe (file missing)
O22 - Task: (disabled) CCleaner Update - C:\Program Files\CCleaner\CCUpdate.exe
O22 - Task: (disabled) Opera scheduled Autoupdate 1497707299 - C:\Users\Denis\AppData\Local\Programs\Opera\launcher.exe --scheduledautoupdate $(Arg0) (file missing)
O22 - Task: (disabled) {68682936-DA73-4082-87F2-472A0868E23C} - C:\Windows\system32\pcalua.exe -a D:\aocsetup.exe -d D:\ -c /autorun
O22 - Task: (disabled) {73B34057-B010-430E-9185-E8880F8930CE} - C:\Windows\system32\pcalua.exe -a "C:\Users\Denis\Downloads\Age Of Empires II+Age of Empires 2 - The Conquerors Expansion+stuff with online play\Age Of Empires II+Age of Empires 2 - The Conquerors Expansion+stuff with online play\Aoe2 patchs and cracks\Age2upA.exe" -d "C:\Users\Denis\Downloads\Age Of Empires II+Age of Empires 2 - The Conquerors Expansion+stuff with online play\Age Of Empires II+Age of Empires 2 - The Conquerors Expansion+stuff with online play\Aoe2 patchs and cracks"
O22 - Task: (disabled) {8C878933-9E98-41FD-B08F-A7EB97C8BCE9} - C:\Windows\system32\pcalua.exe -a "C:\Users\Denis\Downloads\Age of Empires 2 - The Conquerors Expansion - NoCD SuperCrack Patch [v1.0c][ENG]\Age of Empires 2 - The Conquerors Expansion - NoCD SuperCrack Patch [v1.0c][ENG]\Patch 1.0c NoCD\no_cd_1.0c_SuperCrack.exe" -d "C:\Users\Denis\Downloads\Age of Empires 2 - The Conquerors Expansion - NoCD SuperCrack Patch [v1.0c][ENG]\Age of Empires 2 - The Conquerors Expansion - NoCD SuperCrack Patch [v1.0c][ENG]\Patch 1.0c NoCD"
O22 - Task: (telemetry) \Microsoft\Office\OfficeTelemetryAgentFallBack2016 - C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe scan upload mininterval:2880 (Microsoft)
O22 - Task: (telemetry) \Microsoft\Office\OfficeTelemetryAgentLogOn2016 - C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe scan upload (Microsoft)
O22 - Task: (telemetry) \Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - C:\Windows\system32\CompatTelRunner.exe (Microsoft)
O22 - Task: (telemetry) \Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - C:\Windows\system32\compattel\DiagTrackRunner.exe /UploadEtlFilesOnly (Microsoft)
O22 - Task: (telemetry) \Microsoft\Windows\Application Experience\ProgramDataUpdater - C:\Windows\system32\compattelrunner.exe -maintenance (Microsoft)
O22 - Task: Avast Emergency Update - C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
O22 - Task: CCleanerSkipUAC - C:\Program Files\CCleaner\CCleaner.exe $(Arg0)
O22 - Task: GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
O22 - Task: GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
O22 - Task: \Avast Software\Overseer - C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe /from_scheduler:1
O22 - Task: \Games\UpdateCheck_S-1-5-21-1248088687-4277799999-3269530246-1001 - {CA22F5B1-E06F-4A2B-94FC-21E87FE53781} - C:\Windows\System32\gameux.dll
O22 - Task: \Microsoft\Office\Office Automatic Updates 2.0 - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe /frequentupdate SCHEDULEDTASK displaylevel=False (Microsoft)
O22 - Task: \Microsoft\Office\Office ClickToRun Service Monitor - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe /WatchService (Microsoft)
O22 - Task: \Microsoft\Office\Office Feature Updates - C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe (Microsoft)
O22 - Task: \Microsoft\Office\Office Feature Updates Logon - C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe /onlogon (Microsoft)
O22 - Task: \Microsoft\Office\OfficeBackgroundTaskHandlerLogon - C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe (Microsoft)
O22 - Task: \Microsoft\Office\OfficeBackgroundTaskHandlerRegistration - C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe (Microsoft)
O22 - Task: \Microsoft\Windows Live\SOXE\Extractor Definitions Update Task - {3519154C-227E-47F3-9CC9-12C3F05817F1} - (no file)
O22 - Task: \Microsoft\Windows\End Of Support\Notify1 - C:\Windows\system32\sipnotify.exe -LogonOrUnlock (Microsoft)
O22 - Task: \Microsoft\Windows\End Of Support\Notify2 - C:\Windows\system32\sipnotify.exe -Daily (Microsoft)
O22 - Task: \Microsoft\Windows\Setup\EOSNotify2 - C:\Windows\system32\EOSNotify.exe -Daily (Microsoft)
O22 - Task: {FDA7AFC0-5A7E-46F4-8774-36E2F1A02C5D} - C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" -c /uninstall PROHYBRIDR /dll OSETUP.DLL
O23 - Service R2: Acer ePower Service - (ePowerSvc) - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service R2: Avast Antivirus - (avast! Antivirus) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service R2: Bluetooth Service - (btwdins) - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service R2: Diagnostics Tracking Service - (DiagTrack) - C:\Windows\System32\svchost.exe -k utcsvc; "ServiceDll" = C:\Windows\system32\diagtrack.dll
O23 - Service R2: Intel(R) Matrix Storage Event Monitor - (IAANTMON) - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service R2: Microsoft Office Click-to-Run Service - (ClickToRunSvc) - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe /service
O23 - Service R2: NVIDIA Display Driver Service - (nvsvc) - C:\Windows\system32\nvvsvc.exe
O23 - Service R2: NVIDIA Update Service Daemon - (nvUpdatusService) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service R2: TeamViewer 12 - (TeamViewer) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service R2: Updater Service - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service R2: Windows Live ID Sign-in Assistant - (wlidsvc) - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
O23 - Service R3: aswbIDSAgent - C:\Program Files\AVAST Software\Avast\aswidsagent.exe
O23 - Service S2: Služba Google Update (gupdate) - (gupdate) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc
O23 - Service S3: Disc Soft Lite Bus Service - C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
O23 - Service S3: Google Chrome Elevation Service - (GoogleChromeElevationService) - C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.132\elevation_service.exe
O23 - Service S3: Microsoft Office Diagnostics Service - (odserv) - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
O23 - Service S3: Služba Google Update (gupdatem) - (gupdatem) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc
--
End of file - Time spent: 21,7 sec. - 40412 bytes, CRC32: FFFFFFFF. Sign: ጀൡ